NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
ViperGeek
Dec 15, 2016Apprentice
Status:
Engineering Investigation
Enhancement Request: User-supplied SSL certificates for remote management
There is currently no way to install a proper PKI-chained SSL certificate from a third party like Comodo or StartCom SSL. With all current versions of the NETGEAR firmware, when enabling HTTPS access for remote management, my/all browsers get angry because the R7000 is using a self-signed certificate:
I have a free StartCom SSL cert all generated and ready to install. The problem is, there is no supported way to install this certificate, intermediate cert, and private key, with the R7000.
- Dave
47 Comments
- BrendanMcCoyFledgling
I also really would love this.. I bought a .dev domain and being stuck with a bogus cert is miserable.
- ZetsumieFledgling
I was shocked to see the time stamp on this knowing that three years and two months later this still hasn't been implemented. I'm on the road 3/4ths of the year and can only manage my router remotely, but the SSL certificate has always given me problems... What use is installing the certificate when it's only for routerlogin.net!? I don't care about SSL when I'm logging in through LAN...
- vaudricFledgling
It's a must all modern browsers now block access to invalid certs which leaves us without the possibility to access the remote management site.
+1 on https://letsencrypt.org/ support!
Is necessary Netgear permit to add a third part valid certificate with TLS 1.2 or 1.3 support, instead the invalid www.routerlogin.net, I have a RAX120, this expensive router have the same limitation, why?
Exist the root certificate for the validation of the actual?
- dejikoAspirant
Netgear always promoting their products have very high security and usually announce a lot of so called "Security Advisory" about their products, and also provide a firmware upgrade to fix the security issues. But currently, if you login to your Netgear router everytime, almost all of the internet browers saying it is insecure, with a big red label to telling you the connection has a risk for leaking your information. This issue already happened more than 4 years, is it Netgear discards their security standard and put their product with a risk forever?
As per Netgear response, you can choose to use a third party firmware to fixed the problem, but in another channel they say if you use a third party firmware it is very high risk as they cannot ensure the information safety.As a large company or enterprises, I cannot choose such kind of insecure product, this is a very well known issue and easy to fix by adding a let's encrypt feature or upload a certificate manually. As a home user, there have many alternative product in the market already provided a solution for that. So, why we still choose Netgear?
- BrendanMcCoyFledgling
This consumer does and has moved to ubiquiti products.
- dejikoAspirant
schumaku Thank you for your opinions. According to this enhancement request, this function is going for the remote management not in a LAN environment. If as you say "majority of consumers don't have this.", why netgear add this remote management function (but come with a insecure environment)? Now netgear router providing this function, and as a consumer I want to use this function, but I want it would be in more secure, so I vote it here and draw netgear attention.
Actually, if this kind of insecure connection is not very important, why the web browsers like chrome/safari always prompt such annoying warning message everytime and you have to click 2 clicks to bypass it even you had connected to the same address many times? I don't think majority of consumers using the remote management function do not need a secure connection, they just don't know there could have a more secure connection.
In conclude, for me and another 106 guys who kudo this post have been waiting for 4 years, this is a essential feature that is regarding to connection security, and strongly recommend netgear could provide a solution.
- dejikoAspirant
BrendanMcCoy Yes, ubiquiti is one of good choice. But unfortunately ubiquiti is not common in my region and I think this is the only advantages for netgear in some region, the consumers has no choice